Alerts This Week
Warning Icon 1 541
Alerts This Week
Warning Icon 1 541

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
91

Gentoo: GLSA-201406-34 Normal: Man-In-The-Middle Risk in KDE Libraries

Multiple vulnerabilities have been discovered in KDE Libraries, the worst of which could lead to man-in-the-middle attacks.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 201406-34 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: KDE Libraries: Multiple vulnerabilities Date: June 29, 2014 Bugs: #358025, #384227, #469140, #513726 ID: 201406-34 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= Multiple vulnerabilities have been discovered in KDE Libraries, the worst of which could lead to man-in-the-middle attacks. Background ========= KDE is a feature-rich graphical desktop environment for Linux and Unix-like operating systems. KDE Libraries contains libraries needed by all KDE applications. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 kde-base/kdelibs < 4.12.5-r1 > = 4.12.5-r1 Description ========== Multiple vulnerabilities have been discovered in KDE Libraries. Please review the CVE identifiers referenced below for details. Impact ===== A remote attacker could cause a man-in-the-middle attack via any certificate issued by a legitimate certification authority. Furthermore, a local attacker may gain knowledge of user passwords through an information leak. Workaround ========= There is no known workaround at this time. Resolution ========= All KDE users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =kde-base/kdelibs-4.12.5-r1" References ========= [ 1 ] CVE-2011-1094 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-1094 [ 2 ] CVE-2011-3365 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-3365 [ 3 ] CVE-2013-2074 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2013-2074 [ 4 ] CVE-2014-3494 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2014-3494 Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/201406-34 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org. License ====== Copyright 2014 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/2.5/ . A range of security flaws in KDE Frameworks may enable man-in-the-middle exploitation. Update now to protect your environment.. KDE Libraries, Gentoo Linux, Security Advisory, Man-In-The-Middle Attack, Upgrade Instructions. . LinuxSecurity.com Team

Calendar 2 Jun 30, 2014 Gentoo
89

Fedora Core 6: FEDORA-2006-1234 Update: kdelibs 3.5.0 Upgrade

KDE 3.4.2 update. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-675 2005-07-29 ---------------------------------------------------------------------Product : Fedora Core 4 Name : kdelibs Version : 3.4.2 Release : 0.fc4.1 Summary : K Desktop Environment - Libraries Description : Libraries for the K Desktop Environment. KDE Libraries include: kdecore (KDE core library), kdeui (user interface), kfm (file manager), khtmlw (HTML widget), kio (Input/Output, networking), kspell (spelling checker), jscript (javascript), kab (addressbook), kimgio (image manipulation). ---------------------------------------------------------------------Update Information: KDE 3.4.2 update ---------------------------------------------------------------------* Tue Jul 26 2005 Than Ngo 6:3.4.2-0.fc4.1 - update to 3.4.2 ---------------------------------------------------------------------This update can be downloaded from: 5c63bc29066bd908fac5c1a05d13283f SRPMS/kdelibs-3.4.2-0.fc4.1.src.rpm 1a8b6d3bb202a87386770b675a68f46e ppc/kdelibs-3.4.2-0.fc4.1.ppc.rpm c5bb72aa9d26ff1dcfbffe3eff3b3aa4 ppc/kdelibs-devel-3.4.2-0.fc4.1.ppc.rpm 4ae1c1513208475967f0a95497cb8af8 ppc/debug/kdelibs-debuginfo-3.4.2-0.fc4.1.ppc.rpm 3d442ac2b3a3338b27f0efd5b0915ec0 ppc/kdelibs-3.4.2-0.fc4.1.ppc64.rpm 37a83e7f99b7578830d78b2407fc7362 x86_64/kdelibs-3.4.2-0.fc4.1.x86_64.rpm edac98e4b390c9a19a9a800647253c02 x86_64/kdelibs-devel-3.4.2-0.fc4.1.x86_64.rpm 57529177db5327cb3d8e3c4746e8a58d x86_64/debug/kdelibs-debuginfo-3.4.2-0.fc4.1.x86_64.rpm 63f090cbf9f5cd82d45592216d3a1334 x86_64/kdelibs-3.4.2-0.fc4.1.i386.rpm 63f090cbf9f5cd82d45592216d3a1334 i386/kdelibs-3.4.2-0.fc4.1.i386.rpm 6911f6903492ac75a24264890795feee i386/kdelibs-devel-3.4.2-0.fc4.1.i386.rpm d7c8d77f849a591e9bd987ca5807ffcc i386/debug/kdelibs-debuginfo-3.4.2-0.fc4.1.i386.rpm This update can also be installed with theUpdate Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . The Fedora Core 4 update for KDE 3.4.2 brings numerous enhancements and bug resolutions. Access the update via the standard distribution methods.. Fedora Core 4,kdelibs update,KDE libraries,open source updates. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 29, 2005 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here